Here is the short version. We collect the details you type into our quote form, we use them to prepare and respond to your enquiry, and we do nothing else with them. This website sets no cookies. It counts page views with a small first-party beacon of our own — no cookie, no identifier, nothing that can single you out — and, for the length of your visit, it remembers which page you arrived on and where you came from, so that if you do send an enquiry we know which search or advert brought it. Two service providers help us deliver your enquiry — Cloudflare (hosting and spam protection) and Resend (email delivery) — and where WhatsApp is involved (a link you tap, or the automatic fallback if our form fails), Meta’s own processing applies. The rest of this page says the same thing in more detail, in plain language, because India’s Digital Personal Data Protection Act, 2023 (DPDP Act) asks for plain language — and because we prefer it that way anyway.
Who we are
Our business name, registered address, GSTIN and contact details are listed at the top of this page, straight from the same record every other page uses.
Under the DPDP Act, you are the “Data Principal” (the person the data is about) and Power Solutions is the “Data Fiduciary” (the one responsible for handling it properly). This policy covers powersolutions.net.in and the enquiries you send through it.
What we collect, and why
The only place this website collects personal data is the quote form on our contact page. It asks for:
| Field | Required? | Why we ask |
|---|---|---|
| Name | Required | So we know who to address the reply to |
| Mobile number | Required | An engineer calls or WhatsApps you to confirm load, site and timeline. No automated calls. |
| Company / Site name | Required | Enquiries are for business sites; this tells us whose site we’re quoting for |
| Optional | Only needed if you want the written offer by email | |
| City or PIN code | Required | To check the delivery and service area |
| Requirement | Required | Rental, purchase, AMC, repair, CPCB IV+ / RECD or turnkey — so the right person picks it up |
| Capacity | Optional | Helps us size the offer before we call |
| Timeline | Required | Emergencies are handled differently from planning enquiries |
| Notes | Optional | Load details, site conditions, brands on site — anything you want to add |
| Arrival details | Automatic | The page you first landed on, the site that referred you (if any) and any campaign tags (utm_*) in that first address — so we know which search or advert brought the enquiry. Captured when you arrive, sent only if you submit. |
The form also carries four technical fields you don’t see: the page on this site that brought you to the form (so the enquiry can be filed under the right service), a timestamp used to catch bots, a decoy field that only spam software fills in, and the arrival details above. A campaign tag can include the search term an advert was matched on, which is why it is listed here as data rather than plumbing. Separately, your device’s IP address reaches our server with every request, as it does on every website; what we do with it is described below.
What we deliberately don’t ask for: no PAN, no bank or card details, no financial information of any kind. If a form on this site ever asks you for those, it isn’t ours — close it and call us.
Consent — exactly what you agree to
The form has one consent checkbox. It is never pre-ticked, and it says exactly this:
I agree that Power Solutions may use these details to prepare and respond to my enquiry.
That is the whole agreement — preparing and responding to your enquiry. It is not consent to marketing, newsletters or anything else, and we don’t bundle those in. When you submit, we store a consent record with your enquiry: the exact text above, the date and time you agreed, and the IP address it came from. That record is how we can prove — to you or to a regulator — what you agreed to and when.
What happens to your enquiry, step by step
- Spam checks. The decoy field and the timestamp quietly filter out bots. When Cloudflare Turnstile (a privacy-focused alternative to CAPTCHA) is enabled on the form, its result is also verified on our server before anything else happens.
- Rate limiting. Your IP address is used to cap submissions at five per hour. The counter lives in Cloudflare’s KV storage and deletes itself after an hour. Our own code never writes your details into server logs.
- Email to our sales desk. The enquiry is sent as an email through Resend, an email delivery service, to our team’s mailbox — carrying your answers, the arrival details (landing page, referring site, campaign tags) and the consent record (text, timestamp, IP).
- Copy to our own system. Once our internal fleet-management system (our own CRM, self-hosted and run by us) is connected to the form, the enquiry is also pushed into it, together with the arrival details and the consent timestamp and IP — until then, the email is the only copy. The two destinations back each other up: your enquiry counts as received when either the email or the CRM copy lands. If delivery to either one fails, a copy of what could not be delivered is held in Cloudflare’s KV storage for up to 30 days so we can retry, then it deletes automatically; the email to our team also notes whether the CRM copy exists.
- If the form itself fails. Your enquiry opens as a pre-filled WhatsApp draft instead. The draft travels through Meta’s wa.me link, so Meta’s processing applies from the moment it opens — but nothing reaches us unless you press send in WhatsApp yourself.
The form works without JavaScript too (when the Turnstile check is not enabled): your browser posts it directly and lands on our confirmation page. The pipeline behind it is identical.
If you skip the form and use a WhatsApp or phone link anywhere on this site, those links do nothing until you tap them. Tapping hands the conversation to WhatsApp (Meta) or your phone’s dialler — we receive only what you choose to send.
Cookies, tracking and your browser
- Our site sets no cookies. Not one.
- A first-party page-view count, and nothing else. Each page you open sends one small message to our own server on Cloudflare (
/api/hit) recording the page path, the domain of the site that referred you (never the full address), the campaign source and medium if you arrived with utm tags, your country, and whether you are on a phone, tablet or desktop. It does not record your IP address, your device details or any identifier — there is no way to tell one visitor’s rows from another’s, and nothing follows you across sites. Rows are kept for 90 days, then delete themselves. If your browser sends a Do Not Track or Global Privacy Control signal, the count is skipped entirely. - No third-party analytics or advertising scripts. No Google Analytics, no Meta pixel, no session recording — nothing that follows you around.
- Two things in your browser’s own storage. The “Motion” toggle in the top bar saves your choice (on or off) in localStorage under the key
ps-motion; it never leaves your device and we never see it. And for the length of your visit, sessionStorage holdsps-attr— the arrival details described above. It is written once when you arrive, is sent to us only if you submit the quote form, and is discarded when you close the tab. Clear your browser data and both are gone. - Fonts are self-hosted. Your visit triggers no request to Google Fonts or any other font network.
- If we ever add third-party analytics — anything that sets identifiers or follows you across sites — it will load only after you separately agree, with Accept and Decline given equal prominence, and this policy will be updated first. Declining will never affect how the site works.
Who else touches your data
| Service | What it does | What it can see |
|---|---|---|
| Cloudflare | Hosts and serves the website, provides DDoS protection and the Turnstile bot check, and stores the short-lived rate-limit counters, the 30-day replay copies and the 90-day page-view rows | Standard server logs of requests (IP address, pages requested), plus the KV records described above |
| Resend | Delivers the enquiry email to our team’s mailbox | The contents of your enquiry, the arrival details and the consent record |
| Meta (WhatsApp) | Receives the pre-filled draft when the fallback or a WhatsApp link opens; carries the conversation if you send it | The draft text, and whatever you send in the chat, under WhatsApp’s own terms |
| Our fleet-management system | Our internal CRM, self-hosted and run by us (once connected to the form) | The enquiry, the arrival details and the consent record |
We do not sell your data, share it with advertisers or use it for unrelated marketing. Beyond the providers above, it goes nowhere.
Where your data travels
Cloudflare and Resend are US companies operating global networks, so your enquiry and the associated technical data may be processed or stored outside India. The enquiry itself lands with our team in Pune, and our internal system is our own. WhatsApp messages are handled by Meta under its own cross-border arrangements.
How long we keep it
| Data | Kept for |
|---|---|
| Your enquiry and its consent record | 24 months from our last contact with you, then deleted |
| Rate-limit counter (IP address) | About one hour — deletes itself |
| Failed-delivery replay copy — email or CRM (Cloudflare KV) | Up to 30 days — deletes itself |
| Page-view rows (path, referring domain, campaign source/medium, country, device class) | 90 days — delete themselves |
Arrival details (ps-attr) |
In your browser only, until you close the tab; with your enquiry, as long as the enquiry |
Motion preference (ps-motion) |
Lives only in your browser until you clear it |
If your enquiry becomes an order, invoices and contract records are kept as long as Indian tax and accounting law requires — that’s a separate obligation and outlives this policy’s 24 months.
Your rights
Under the DPDP Act you can:
- Access — ask what details of yours we hold.
- Correction — have wrong or outdated details fixed.
- Erasure — ask us to delete your details.
- Withdraw consent — at any time. We stop using your details and delete the enquiry record, unless we need them to finish work you’ve already asked us to do.
- Grievance — complain and get an answer, as described below.
To use any of these, email privacy@powersolutions.net.in from the email address or with the phone number you used in your enquiry, so we can confirm it’s you. There’s no form to fill and no fee.
Grievances
If you think we’ve mishandled your data, write to privacy@powersolutions.net.in, or by post to the registered address shown at the top of this page.
We will acknowledge your grievance within 7 business days and resolve it within 30 days. If a fix needs longer for a genuine technical reason, we’ll tell you why and give you a date.
Governing law
This policy is governed by the laws of India, and the courts at Pune, Maharashtra have jurisdiction over any dispute arising from it.
Changes to this policy
The “last reviewed” date at the top of this page tells you when we last checked it. If we change what we actually do — say, adding analytics or a new service provider — we update this page before the change goes live, and anything that needs your consent will ask for it separately.
One correction on our own record: the page-view count and the arrival details described above went live on 15 August 2026, and this page was not updated until 5 September 2026, when an audit of the site caught the gap. Neither collects anything that identifies you, but the commitment above is to describe changes before they ship, and we missed it once. Our build now refuses to publish if that code changes without this page being reviewed. Questions about any of it: privacy@powersolutions.net.in.